PAGE HEADING

Creating a Disaster Plan to Ensure Your Company’s Security

by by Paul C. Ursich, CPA, and Robert Risk, Wiss & Company LLP - May 22, 2017
Unprepared Prepared

When it comes to defending your enterprise from undefined catastrophes, traditional disaster recovery tactics are no longer adequate. If cyber terrorists seize your company’s critical information, or if human error or natural disasters erase your company’s data, your resources cannot be swiftly returned by outdated recovery methods. To sustain your company’s position in a combative marketplace, it is vital to form a modernized disaster planning solution customized to fit your needs. By using judicious, solid components of recovery, such as business continuity planning (BCP), disaster recovery (DR) and penetration testing, your business can diminish losses and emerge from misfortunes relatively unharmed and ready to persevere.

There are comprehensive steps to devising and enacting a suitable disaster plan. The following points outline the roadmap to ensuring your company’s security:

1. Business Continuity Planning

From minor to catastrophic adversities, businesses can face myriad inconvenienc­es in their lifetime. Fortunately, BCP can assist companies in marching forward and continuing operations through hardship. A solid BCP should include a cyber insurance review. Cyber insurance helps businesses mitigate the risk of a data breach or net­work security failure. The method encompasses steps such as singularizing latent threats, determining the extent of these threats, employing precautions and measures aimed to mitigate said risks, testing defenses, and redesigning the formation to confirm it is up-to-date with the latest features and components.

However, it is important to note that although BCP can help a company prolong business-as-usual when confronting common misfortunes like fires or floods, the strategy is not as valuable if the disaster affects a hefty sum of the populace, such as a disease outbreak. One example would be a finance establishment that backs up its data offsite. If something were to happen to their headquarters, satellite offices would be able to retrieve vital information and help the business to continue to operate.

2. Disaster Recovery

To shield businesses from sweeping catastrophes, disaster recovery efforts can assist in the recovery of an organization’s software, hardware and data, as well as the recommence of standard, critical busi­ness functions. As a slice of BCP, disaster recovery plans consist of calculated and extensive planning, assessment and possi­bly an isolated site for restoring corporate operations. Moreover, though the majority of DR planning concentrates on recovery of data, companies must recognize the multifaceted prospects of disasters, such as illnesses that can wipe out staffing, and consider them when designing a DR plan. The plan must be inclusive and understood by key staff members so they can act accordingly when a disaster strikes. It should also be updated when staff join or leave the team, a new branch office opens, or new software or hardware is added.

3. Penetration Testing

An effective weapon against any disaster that crosses your company’s path is the execution of a penetration test. This effort can proficiently gauge the security of your IT infrastructure by carefully attempting to unearth any vulnerabilities. These weak­nesses may subsist in operating systems, service and application faults, unfitting configurations, or perilous end-user behavior. Such examinations are also advantageous in authenticating the efficacy of defensive appliances as well as end-user observance to security procedures.

The swift stride of change in the indus­try, coupled with the menace of informa­tion loss in small or massive data platforms, elevates the importance of augmenting protection against malintent or disasters. Since catastrophes materialize in a variety of forms, your company must have a vigor­ous and well-tested disaster plan equipped to safeguard your business and its resourc­es. Disaster planning commands a novel way of thinking, where businesses can take advantage of fresh technologies that can maintain pace with data evolution and the preservation of valuable information from unforeseen setbacks.

Icon_MemberBenefits_MID
CPACharge
CPACharge was developed specifically for CPAs, enrolled agents and accountants, providing a simple, affordable online payment solution that allows you to securely accept credit, debit, and eCheck/ACH payments from anywhere. 
NJCPA_Icn_4C
On-Site Training

NJCPA on-site training programs offer the same outstanding content and expert instruction as our seminars but are led at your location.

Icon_MemberBenefits_MID
Accounting Today
Save 20 percent on an Accounting Today subscription and stay up to date on the latest issues affecting the profession.
Icon_3_people_circle_SKY-04
Join the Accounting Educators Community

Connect and share with other accounting educators about curriculum, trends and the profession. Learn about NJCPA initiatives that are valuable for your students including information on obtaining the CPA designation, student membership, scholarships, volunteer opportunities and events.

Icon_4_cube_connection_SKY-04
Earn an AICPA Robotic Process Automation Certificate
Recognize what RPA is and its business value, with specific focus on accounting and finance functions. Understand how RPA provides a significant competitive advantage.
Icon_MemberBenefits_MID
Guaranteed Rate/Marc Demetriou
Marc Demetriou of Guaranteed Rate is offering NJCPA members a “no lender fee mortgage” ($1,440 lender fee credit), competitive low rates and a dedicated team to deliver world class service.
Icon_3_people_circle_SKY-04
Join the Women's Leadership Forum

Join our online forum that enables female CPAs at all career levels and industries to make meaningful connections with each other and discuss career goals.

Icon_Monitor_magnify_SKY-04
Earn an AICPA Single Audit Certificate
Learn how to plan, perform and evaluate single audits in accordance with the latest requirements of the new Uniform Guidance.
Icon_MemberBenefits_MID
Wolters Kluwer
NJCPA members save 25 percent on CCH CPELink subscriptions, live webinars and on-demand self-study (mobile friendly) CPE courses.
Icon_MemberBenefits_MID
SMI

SMI has negotiated special discounts for the NJCPA members with all the major technology carriers and providers.

Icon_3_people_circle_SKY-04
Join the Business & Industry Professionals Interest Group

Stay connected to your peers and share knowledge on corporate finance topics.

Wolters Kluwer CCH
Save on COVID Tax Resources
NJCPA members save 25 percent on Wolters Kluwer's new book, COVID and Taxpayer Certainty Acts of 2020: Law, Explanation & Analysis.
NJCPA_Icn_4C
Shop the NJCPA store
Are you NJCPA proud? Purchase NJCPA merch to show your pride and help support our scholarship program.
Icon_Shooting_up_arrows_MID-03
Real Estate Classified Ads
View classified ad postings for office space for sale or rent.
Icon_Handshake_MID-03
Mergers & Acquisitions Classified Ads
View classified ad postings from CPA firms looking to be acquired and those looking to acquire or merge with other firms.
Icons_3_gears_midnight-03
Professional Services Classified Ads
View classified ad postings from companies providing services to CPAs.
Icon_3_people_circle_SKY-04
Join the Cannabis Interest Group
New Jerseyans have voted to legalize cannabis. Join the NJCPA's Cannabis Interest Group to gain information, insights and best practices for serving clients in this promising new industry.
NJCPA_Icn_4C
Zoom Backgrounds
Download our virtual backgrounds for Zoom meetings.
Icon_certificate_SKY-04
Earn an AICPA Certificate
When you’re ready to show your competencies, expand your career opportunities or enter new areas of practice, start by earning an AICPA certificate. Choose a certificate that matches your next career goal.
Icon_4_cube_connection_SKY-04
Earn the AICPA Blockchain Fundamentals Certificate
Build a foundation toward becoming a strategic business partner within your organization and with your clients. Learn how to anticipate potential benefits and risks of the technology, structure and functionality, and to translate them into relevant business application and value.